Posts

Showing posts with the label #security
Image
SBI, ICICI, HDFC, Axis Bank, PNB and the Indian IT department targeted in phishing scam. INTRODUCTION  Cyber criminals are trying to lure Indian users into revealing important personal information with a new report on Monday warning that suspicious messages asking users to submit an application for the disbursement of income tax refund have been doing the rounds, with a link that directs users to a web page looking like the income tax e-filing web page. Which banks hack by phishing scam ? The targeted banks in the campaign include the State Bank of India, ICICI, HDFC, Axis Bank and Punjab National Bank, revealed an investigation by New Delhi-based think tank CyberPeace Foundation along with cybersecurity services firmAutobot Infosec. The suspicious links originate from the US and France, said the report, adding that the campaign is collecting personal as well as banking information from the user and getting into this type of trap could cause a massive financial loss for the users. ...

How to hack Solar wind ?

Image
     A malicious web shell deployed on Windows systems by leveraging a previously undisclosed zero-day in Solar Winds' Orion network monitoring software may have been the work of a possible Chinese threat group.       In a report published by Secure works on Monday, the cyber security firm attributed the intrusions to a threat actor it calls Spiral.       Back on December 22, 2020, Microsoft disclosed that a second   espionage group may have been abusing the IT infrastructure provider's Orion software to drop a persistent backdoor called Supernova on target systems. The findings were also corroborated by cyber security firms Palo Alto Networks' Unit 42 threat intelligence team and GuidePoint Security, both of whom described Supernova as a .NET web shell implemented by modifying an "app_web_logoimagehandler.ashx.b6031896.dll" module of the SolarWinds Orion application. What is role of  CTU Researchers ? According to Secure work...